Privacy Policy

Last updated: 28 July 2026

Draft — pending legal review
This policy accurately describes how Trade Thesis currently handles data, but it has not been reviewed by a lawyer. If anything here matters to your decision to use the product, ask and it will be clarified.

Who this covers

Trade Thesis is a research tool for self-directed ASX investors, operated from Australia. This policy covers the website and the application.

What is collected

  • Account details. Your email address and a unique identifier from the authentication provider. Optionally, the marginal tax rate you set, which is used for CGT (Capital Gains Tax) calculations.
  • Content you create. Review verdicts, research notes, hypotheses, journal entries and any images you attach to them, imported trades, and the positions derived from them.
  • Usage data. Pages visited, features used, and error reports, so that problems can be found and fixed.
  • Waitlist signups. If you join the waitlist, your email address, so you can be told when access opens.

Who it is shared with

Your data is not sold, and it is not shared for advertising. It is processed by the following services in order to run the product:

  • Auth0 — authentication and login.
  • Anthropic — when you use trade import, the broker data you paste in is sent to the Claude API so the trades can be extracted. This happens only when you actively use that feature.
  • PostHog (EU-hosted) — product analytics, error tracking, and session recording. Session recordings capture the application as it appears on your screen, so content you have open at the time — research notes, hypotheses, journal entries — can be captured along with it. See below.
  • Google Analytics — website traffic measurement.
  • Brevo — product and onboarding email.
  • Railway — application and database hosting.

Session recording

Sessions in the application may be recorded so that we can understand how features are used and where they fail. A recording is a reconstruction of what was rendered on your screen, not just a list of clicks — so if you had a research note, hypothesis, or journal entry open, its text can appear in the recording. Values you type into form fields are masked by default.

Recordings are used to improve the product, not to monitor individuals. If you would rather not be recorded, say so at the address below and it will be switched off for your account.

How long it is kept

Content you create is kept for as long as your account exists. Analytics, error, and session-recording data are retained according to the providers' own retention periods.

Two honest caveats about deletion, because the product is early. Deleting some items inside the app marks them as deleted and hides them from you rather than removing the row immediately. Images attached to journal entries are not removed from storage when the entry is deleted. Both are being addressed; in the meantime, a deletion request handled at the address below is the way to have data actually removed.

Your choices

You can ask for a copy of your data, ask for it to be corrected, ask to be excluded from session recording, or ask for your account and its contents to be deleted. Email hello@tradethesis.com. There is no self-service button for this yet — requests are handled manually, and you will get a reply confirming what was done.

Changes

Trade Thesis is in active development, so this policy will change as integrations change. The date at the top reflects the last update. Material changes affecting how your data is handled will be communicated by email.

See also the Terms of Service .